create_a_phishing_campaign_with_a_word_macro
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
create_a_phishing_campaign_with_a_word_macro [2019/08/07 14:31] – lucy | create_a_phishing_campaign_with_a_word_macro [2020/08/19 16:31] (current) – [Configuration] lucy | ||
---|---|---|---|
Line 10: | Line 10: | ||
* **Macro Simulation " | * **Macro Simulation " | ||
* **Macro Simulation "POST ONLY": | * **Macro Simulation "POST ONLY": | ||
- | * **Macro Simulation "GET ONLY": | + | * **Macro Simulation "GET ONLY": |
Please note, that those are only two samples. **You can create your own template**. Please check the tutorial at the bottom of this page. | Please note, that those are only two samples. **You can create your own template**. Please check the tutorial at the bottom of this page. | ||
Line 17: | Line 18: | ||
===== Configuration ===== | ===== Configuration ===== | ||
- | After the login, you can create your first phishing campaign by pressing the button “**New**”.\\ | + | After the login, you can create your first phishing campaign by pressing the button “**New |
\\ | \\ | ||
{{: | {{: | ||
\\ | \\ | ||
- | |||
- | We recommend using the Setup Wizard when used for the first time. | ||
- | |||
- | {{: | ||
- | |||
===== STEP 2 - Select or Create a Client ===== | ===== STEP 2 - Select or Create a Client ===== | ||
Line 33: | Line 29: | ||
{{: | {{: | ||
- | New clients can be created under settings>clients.\\ | + | New clients can be created under **Settings>Clients**.\\ |
{{: | {{: | ||
Line 78: | Line 74: | ||
Once you have selected the scenario, you need to configure the **Base Settings** of the campaign. First, give your campaign a name and then choose how your recipients will be able to access LUCY by defining the [[domain_configuration|Domain]]. Finding the appropriate domain name is a very important step for the success and it depends very much on your campaign scenario. If you plan to create a fake web mail login you might try to reserve a domain like " | Once you have selected the scenario, you need to configure the **Base Settings** of the campaign. First, give your campaign a name and then choose how your recipients will be able to access LUCY by defining the [[domain_configuration|Domain]]. Finding the appropriate domain name is a very important step for the success and it depends very much on your campaign scenario. If you plan to create a fake web mail login you might try to reserve a domain like " | ||
- | {{:macro_16.png? | + | {{:macro_18.png? |
\\ | \\ | ||
**Note**: Each scenario has its own Base Settings. | **Note**: Each scenario has its own Base Settings. | ||
Line 90: | Line 86: | ||
* **Disable Landing**: Check to disable landing page for this scenario. | * **Disable Landing**: Check to disable landing page for this scenario. | ||
* **Send Link to Awareness Website Automatically**: | * **Send Link to Awareness Website Automatically**: | ||
- | * **Awareness Delay**: | + | * **Advanced Information Gathering**: Check this option to enable advanced visitor information gathering More details can be found here: [[Advanced information gathering]] |
* **Success Action**: Defines what LUCY considers as a successful attack. There are [[success_actions|four options]]. | * **Success Action**: Defines what LUCY considers as a successful attack. There are [[success_actions|four options]]. | ||
* **Collect Data**: Choose " | * **Collect Data**: Choose " | ||
* **Double Barrel Attack**: When using Double Barrel Attack, the system first sends a " | * **Double Barrel Attack**: When using Double Barrel Attack, the system first sends a " | ||
- | * **Login Regexp**: Another option is to define some login filters to only catch valid logins (you could define | + | * **URL Shortener**: When you place the %link% variable within |
* **Redirect URL**: This is used for [[create_a_phishing_campaign_with_only_a_hyperlink_in_mail_no_landing_page|hyperlink based scenarios]] or within a landing page to redirect to an awareness page. | * **Redirect URL**: This is used for [[create_a_phishing_campaign_with_only_a_hyperlink_in_mail_no_landing_page|hyperlink based scenarios]] or within a landing page to redirect to an awareness page. | ||
- | * **Compress Executable**: This setting is irrelevant for a Macro Based Campaign as a word file is not executable. | + | * **File Type**: In this drop-down list you can select the type of file that will be attached to the email. |
Line 167: | Line 163: | ||
You can create your own template in two ways: | You can create your own template in two ways: | ||
- | - based on a copy of an existing template | + | - Based on a copy of an existing template |
- | - create | + | - Create |
**Example: create a copy of an existing template** | **Example: create a copy of an existing template** |
create_a_phishing_campaign_with_a_word_macro.txt · Last modified: 2020/08/19 16:31 by lucy